S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
low·Information Scans·Updated Dec 16, 2023

IMAP Server NTLM Authentication Information Scanner

IMAP Server NTLM Authentication Information Scanner

Est. Time~15 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.7k
Times Used
continuous scan runs
6.1k
Continuously Checked
assets under CS
287
Vulnerabilities Found
confirmed findings
References
Detail

This script enumerates information from remote IMAP services with NTLM authentication enabled.

Sending an IMAP NTLM authentication request with null credentials will cause the remote service to respond with a NTLMSSP message disclosing information to include NetBIOS, DNS, and OS build version.

Solution Advice

Set the Send NTLMv2 responses exclusively option in the Network security: LAN Manager Authentication Level setting. When all client computers implement NTLMv2, Microsoft and a number of independent organizations strongly recommend this level of authentication.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.